CVE-2007-2217: Code Injection
Kodak Image Viewer in Microsoft Windows 2000 SP4, and in some cases XP SP2 and Server 2003 SP1 and SP2, allows remote attackers to execute arbitrary code via crafted image files that trigger memory corruption, as demonstrated by a certain .tif (TIFF) file.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-2217?
CVE-2007-2217 has been classified with high severity due to its potential to allow remote code execution.
How do I fix CVE-2007-2217?
To mitigate CVE-2007-2217, users should update their Kodak Image Viewer or disable the handling of TIFF files in the affected operating systems.
Which systems are affected by CVE-2007-2217?
CVE-2007-2217 affects systems running Kodak Image Viewer on Microsoft Windows 2000 SP4, Windows XP SP2, and Windows Server 2003 SP1 and SP2.
What type of attack does CVE-2007-2217 represent?
CVE-2007-2217 represents a remote code execution vulnerability triggered by malformed TIFF images.
What is the nature of the vulnerability in CVE-2007-2217?
The vulnerability in CVE-2007-2217 is due to memory corruption caused by processing crafted image files.